Candidate: CVE-2012-6543 PublicDate: 2013-03-15 20:55:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-6543 http://www.openwall.com/lists/oss-security/2013/03/07 http://www.openwall.com/lists/oss-security/2013/03/07/2 Description: The l2tp_ip6_getname function in net/l2tp/l2tp_ip6.c in the Linux kernel before 3.6 does not initialize a certain structure member, which allows local users to obtain sensitive information from kernel stack memory via a crafted application. Ubuntu-Description: Mathias Krause discovered an information leak in the Linux kernel's implementation of getsockname for Layer Two Tunneling Protocol (L2TP). A local user could exploit this flaw to examine some of the kernel's stack memory. Notes: Bugs: https://launchpad.net/bugs/1156750 Priority: low Discovered-by: Mathias Krause Assigned-to: CVSS: Patches_linux: break-fix: a32e0eec7042b21ccb52896cf715e3e2641fed93 04d4fbca1017c11381e7d82acea21dd741e748bc upstream_linux: released (3.6~rc3) hardy_linux: not-affected lucid_linux: not-affected oneiric_linux: not-affected precise_linux: not-affected quantal_linux: not-affected (3.5.0-17.26) raring_linux: not-affected (3.7.0-0.1) devel_linux: not-affected (3.7.0-0.1) Patches_linux-ec2: upstream_linux-ec2: released (3.6~rc3) hardy_linux-ec2: DNE lucid_linux-ec2: not-affected oneiric_linux-ec2: DNE precise_linux-ec2: DNE quantal_linux-ec2: DNE raring_linux-ec2: DNE devel_linux-ec2: DNE Patches_linux-mvl-dove: upstream_linux-mvl-dove: released (3.6~rc3) hardy_linux-mvl-dove: DNE lucid_linux-mvl-dove: ignored (reached end-of-life) oneiric_linux-mvl-dove: DNE precise_linux-mvl-dove: DNE quantal_linux-mvl-dove: DNE raring_linux-mvl-dove: DNE devel_linux-mvl-dove: DNE Patches_linux-ti-omap4: upstream_linux-ti-omap4: released (3.6~rc3) hardy_linux-ti-omap4: DNE lucid_linux-ti-omap4: DNE oneiric_linux-ti-omap4: not-affected precise_linux-ti-omap4: not-affected quantal_linux-ti-omap4: not-affected (3.5.0-213.20) raring_linux-ti-omap4: not-affected (3.5.0-213.20) devel_linux-ti-omap4: not-affected (3.5.0-213.20) Patches_linux-lts-backport-maverick: upstream_linux-lts-backport-maverick: released (3.6~rc3) hardy_linux-lts-backport-maverick: DNE lucid_linux-lts-backport-maverick: ignored (reached end-of-life) oneiric_linux-lts-backport-maverick: DNE precise_linux-lts-backport-maverick: DNE quantal_linux-lts-backport-maverick: DNE raring_linux-lts-backport-maverick: DNE devel_linux-lts-backport-maverick: DNE Patches_linux-fsl-imx51: upstream_linux-fsl-imx51: released (3.6~rc3) hardy_linux-fsl-imx51: DNE lucid_linux-fsl-imx51: ignored (reached end-of-life, does not affect buildd) oneiric_linux-fsl-imx51: DNE precise_linux-fsl-imx51: DNE quantal_linux-fsl-imx51: DNE raring_linux-fsl-imx51: DNE devel_linux-fsl-imx51: DNE Patches_linux-lts-backport-oneiric: upstream_linux-lts-backport-oneiric: released (3.6~rc3) hardy_linux-lts-backport-oneiric: DNE lucid_linux-lts-backport-oneiric: not-affected oneiric_linux-lts-backport-oneiric: DNE precise_linux-lts-backport-oneiric: DNE quantal_linux-lts-backport-oneiric: DNE raring_linux-lts-backport-oneiric: DNE devel_linux-lts-backport-oneiric: DNE Patches_linux-linaro-omap: upstream_linux-linaro-omap: released (3.6~rc3) hardy_linux-linaro-omap: DNE lucid_linux-linaro-omap: DNE oneiric_linux-linaro-omap: ignored (abandoned) precise_linux-linaro-omap: ignored (abandoned) quantal_linux-linaro-omap: ignored (abandoned) raring_linux-linaro-omap: DNE devel_linux-linaro-omap: DNE Patches_linux-linaro-shared: upstream_linux-linaro-shared: released (3.6~rc3) hardy_linux-linaro-shared: DNE lucid_linux-linaro-shared: DNE oneiric_linux-linaro-shared: ignored (abandoned) precise_linux-linaro-shared: ignored (abandoned) quantal_linux-linaro-shared: ignored (abandoned) raring_linux-linaro-shared: DNE devel_linux-linaro-shared: DNE Patches_linux-linaro-vexpress: upstream_linux-linaro-vexpress: released (3.6~rc3) hardy_linux-linaro-vexpress: DNE lucid_linux-linaro-vexpress: DNE oneiric_linux-linaro-vexpress: ignored (abandoned) precise_linux-linaro-vexpress: ignored (abandoned) quantal_linux-linaro-vexpress: ignored (abandoned) raring_linux-linaro-vexpress: DNE devel_linux-linaro-vexpress: DNE Patches_linux-qcm-msm: upstream_linux-qcm-msm: released (3.6~rc3) hardy_linux-qcm-msm: DNE lucid_linux-qcm-msm: ignored (abandoned) oneiric_linux-qcm-msm: ignored (abandoned) precise_linux-qcm-msm: ignored (abandoned) quantal_linux-qcm-msm: ignored (abandoned) raring_linux-qcm-msm: DNE devel_linux-qcm-msm: DNE Tags_linux-armadaxp: not-ue Patches_linux-armadaxp: upstream_linux-armadaxp: released (3.6~rc3) hardy_linux-armadaxp: DNE lucid_linux-armadaxp: DNE oneiric_linux-armadaxp: DNE precise_linux-armadaxp: not-affected quantal_linux-armadaxp: not-affected (3.5.0-1603.5) raring_linux-armadaxp: DNE devel_linux-armadaxp: DNE Patches_linux-lts-quantal: upstream_linux-lts-quantal: released (3.6~rc3) hardy_linux-lts-quantal: DNE lucid_linux-lts-quantal: DNE oneiric_linux-lts-quantal: DNE precise_linux-lts-quantal: not-affected (3.5.0-18.29~precise1) quantal_linux-lts-quantal: DNE raring_linux-lts-quantal: DNE devel_linux-lts-quantal: DNE Patches_linux-lts-raring: upstream_linux-lts-raring: released (3.6~rc3) hardy_linux-lts-raring: DNE lucid_linux-lts-raring: DNE oneiric_linux-lts-raring: DNE precise_linux-lts-raring: not-affected quantal_linux-lts-raring: DNE raring_linux-lts-raring: DNE devel_linux-lts-raring: DNE